Project

General

Profile

XMMBoot » History » Version 73

Denis 'GNUtoo' Carikli, 03/25/2020 05:05 PM

1 1 Denis 'GNUtoo' Carikli
h1. XMMBoot
2
3 59 Denis 'GNUtoo' Carikli
{{toc}}
4
5 1 Denis 'GNUtoo' Carikli
h2.  Introduction
6
7
For both libsamsung-ipc and the Linux driver it's interesting to understand better the boot of the modem in order to come with good names for the abstraction.
8
9 58 Denis 'GNUtoo' Carikli
h2. Abstraction
10
11
* hci_power -> link_power
12
13 63 Denis 'GNUtoo' Carikli
TODO:
14
* Find the difference between power_on and boot_power_on
15
** Look at the GPIOs and understand what they do
16
** Just read the code that use the GPIOs
17
** Diff both procedures
18 67 Denis 'GNUtoo' Carikli
* Look which device has which XMM626X
19
* Add XMM6210 devices too
20 63 Denis 'GNUtoo' Carikli
21 16 Denis 'GNUtoo' Carikli
h2. GPIOs
22
23 55 Denis 'GNUtoo' Carikli
h3. Devices GPIOs assignement and drivers
24 47 Denis 'GNUtoo' Carikli
25 73 Denis 'GNUtoo' Carikli
|_. Variant |_. SOC |_. Modem  |_. Link |_. GPIO usage |_. GPIO assignement |
26
| GT-I9100 | Exynos 4410 | XMM6260 | | "CONFIG_UMTS_MODEM_XMM6260=y":https://git.replicant.us/replicant/kernel_samsung_smdk4412/tree/arch/arm/configs/lineageos_i9100_defconfig#n1321 | |
27
| GT-I9300 | Exynos 4412 | XMM6262 | HSIC | "CONFIG_UMTS_MODEM_XMM6262=y":https://git.replicant.us/replicant/kernel_samsung_smdk4412/tree/arch/arm/configs/lineageos_i9300_defconfig#n1350
28 1 Denis 'GNUtoo' Carikli
"Makefile":https://git.replicant.us/replicant/kernel_samsung_smdk4412/tree/drivers/misc/modem_if/Makefile#n10
29 49 Denis 'GNUtoo' Carikli
"modem_modemctl_device_xmm6262.c":https://git.replicant.us/replicant/kernel_samsung_smdk4412/tree/drivers/misc/modem_if/modem_modemctl_device_xmm6262.c | "CONFIG_SEC_MODEM_M0=y":https://git.replicant.us/replicant/kernel_samsung_smdk4412/tree/arch/arm/configs/lineageos_i9300_defconfig#n541
30
"Makefile":https://git.replicant.us/replicant/kernel_samsung_smdk4412/tree/arch/arm/mach-exynos/Makefile#n320
31 50 Denis 'GNUtoo' Carikli
"board-m0-modems.c":https://git.replicant.us/replicant/kernel_samsung_smdk4412/tree/arch/arm/mach-exynos/board-m0-modems.c 
32
"CONFIG_MACH_M0=y":https://git.replicant.us/replicant/kernel_samsung_smdk4412/tree/arch/arm/configs/lineageos_i9300_defconfig#n455
33 1 Denis 'GNUtoo' Carikli
"gpio-midas.h":https://git.replicant.us/replicant/kernel_samsung_smdk4412/tree/arch/arm/mach-exynos/include/mach/gpio-midas.h#n28
34
"gpio-rev00-m0.h":https://git.replicant.us/replicant/kernel_samsung_smdk4412/tree/arch/arm/mach-exynos/include/mach/gpio-rev00-m0.h |
35 55 Denis 'GNUtoo' Carikli
36
h3. GPIOs usage
37
38 65 Denis 'GNUtoo' Carikli
TODO: make sure to mention what applies to what device
39
* Start with I9300. Assume I9300 if device is not mentioned. Mention device when not I9300
40
* Add more devices and mention them
41
42 55 Denis 'GNUtoo' Carikli
|_. gpio platform data name |_. present |_. absent |_. Implementation |_. comments |
43
| gpio_cp_on | | | | powers on the modem? in which state (PMIC?, CPU?)
44
* On GT-I9100 it's connected to the ON1 modem pin and ON2 is not connected. |
45
| gpio_cp_reset | | | | Resets the modem CPU? PMIC?:
46
* "''check the reset timming with C2C connection''":https://git.replicant.us/replicant/kernel_samsung_smdk4412/tree/drivers/misc/modem_if/modem_modemctl_device_xmm6262.c#n106 : Here C2C probably means chip to chip
47
Can also read the modem CPU? and/or PMIC? reset state?
48
* "Reads from the GPIO and ''CP not ready, Active State low'' comment":https://git.replicant.us/replicant/kernel_samsung_smdk4412/tree/arch/arm/mach-exynos/board-m0-modems.c#n287 |
49
| gpio_reset_req_n | | | |
50
| gpio_pda_active | | | | Tell the modem if the SOC CPUs are sleeping/active or not?
51
* "PDA == Application processor":https://android.stackexchange.com/questions/176515/what-do-the-terms-bl-ap-cp-and-csc-mean-in-odin
52
* "''PDA_ACTIVE, let cp know AP sleep'' comment in status gc1-gpio.c":https://git.replicant.us/replicant/kernel_samsung_smdk4412/tree/arch/arm/mach-exynos/gc1-gpio.c#n213
53
* "PDA_ACTIVE set to 0 right after cpu_pm_enter()":https://git.replicant.us/replicant/kernel_samsung_smdk4412/tree/arch/arm/mach-exynos/cpuidle-exynos4.c#n701
54
* "PDA_ACTIVE set to 1 right before cpu_pm_exit()":https://git.replicant.us/replicant/kernel_samsung_smdk4412/tree/arch/arm/mach-exynos/cpuidle-exynos4.c#n796
55
* GPIO direction is output on AP side and input on BP side, which is also confirmed by the "pinout table in XDA":https://forum.xda-developers.com/galaxy-s2/help/how-to-talk-to-modem-commands-t1471241/page4 |
56
| gpio_phone_active | | | | |
57
| gpio_cp_dump_int | | | | cp: baseband processor |
58
| gpio_flm_uart_sel |\2. Only used for the Galaxy Nexus in libsamsung-ipc | | Modem download mode ? |
59
| gpio_cp_warm_reset | | | | cp: baseband processor |
60
| gpio_revers_bias_clear | | | | |
61
| gpio_revers_bias_restore | | | | |
62
| gpio_sim_detect | | | | Detect SIM card presence ? |
63 47 Denis 'GNUtoo' Carikli
64 53 Denis 'GNUtoo' Carikli
h3. Libsamsung-ipc
65 52 Denis 'GNUtoo' Carikli
66 1 Denis 'GNUtoo' Carikli
|/2. ioctl / function |\6. Devices |
67 54 Denis 'GNUtoo' Carikli
| GT-I9250 (maguro) | GT-I9100 | GT-I9300 | GT-N5100 | GT-N7100 | GT-P3100 / GT-P5100 (piranah) |
68 52 Denis 'GNUtoo' Carikli
| open, close, read, write 
69 1 Denis 'GNUtoo' Carikli
fmt/rfs
70
gprs
71 54 Denis 'GNUtoo' Carikli
power |\6. Yes |
72 52 Denis 'GNUtoo' Carikli
| boot_power
73 54 Denis 'GNUtoo' Carikli
status_online_wait | Yes |\5. No |
74 1 Denis 'GNUtoo' Carikli
| hci_power
75 52 Denis 'GNUtoo' Carikli
link_control_enable
76
link_control_active
77
link_control_wait
78 54 Denis 'GNUtoo' Carikli
link_get_hostwake_wait | No |\4. Yes | No |
79 52 Denis 'GNUtoo' Carikli
80 66 Denis 'GNUtoo' Carikli
TODO:
81
* Don't use abbreviated function names
82
83 56 Denis 'GNUtoo' Carikli
h3. libsamsung-ipc <-> kernel functions <-> gpios
84 10 Denis 'GNUtoo' Carikli
85 56 Denis 'GNUtoo' Carikli
|_. libsamsung-ipc |_\3. Kernel |
86 57 Denis 'GNUtoo' Carikli
|_. Function using the ioctl |_. ioctl name |_. function pointer name |_. GPIO used |
87
| xmm626_kernel_smdk4412_power | IOCTL_MODEM_ON
88
IOCTL_MODEM_OFF | modem_on
89
modem_off | gpio_cp_on
90
gpio_cp_reset
91
gpio_reset_req_n
92
gpio_pda_active |
93 56 Denis 'GNUtoo' Carikli
| | | | gpio_phone_active |
94
| | | | gpio_cp_dump_int |
95 36 Denis 'GNUtoo' Carikli
| xmm626_kernel_smdk4412_boot_power | IOCTL_MODEM_BOOT_ON
96 1 Denis 'GNUtoo' Carikli
IOCTL_MODEM_BOOT_OFF | modem_boot_on
97 56 Denis 'GNUtoo' Carikli
modem_boot_off | gpio_flm_uart_sel |
98
| | | | gpio_cp_warm_reset |
99
| | | | gpio_revers_bias_clear |
100
| | | | gpio_revers_bias_restore |
101
| | | | gpio_sim_detect |
102 44 Denis 'GNUtoo' Carikli
103
h3. Glossary
104
105 72 Denis 'GNUtoo' Carikli
Terms for the modem CPU:
106 61 Denis 'GNUtoo' Carikli
* BP: Baseband processor
107
* CP: Cellular? processor
108 60 Denis 'GNUtoo' Carikli
109 72 Denis 'GNUtoo' Carikli
Term for the CPU of the system on a chip running Replicant:
110 60 Denis 'GNUtoo' Carikli
* AP: Application processor
111 1 Denis 'GNUtoo' Carikli
112 62 Denis 'GNUtoo' Carikli
TODO: move in its own page and point to it
113
114 16 Denis 'GNUtoo' Carikli
h3. SIM card presence detection
115 7 Denis 'GNUtoo' Carikli
116
Do we really want to check the SIM card presence?
117
118
Would it be possible not to for privacy reasons?
119
120
Example:
121
* Boot a modem with a SIM
122
* Take away the SIM card
123 1 Denis 'GNUtoo' Carikli
* Go to a protest with only the SIM card and a phone with no data on it to be able to call if necessary.
124 7 Denis 'GNUtoo' Carikli
125 16 Denis 'GNUtoo' Carikli
h3. TODO
126 1 Denis 'GNUtoo' Carikli
127
* check gpio_flm_uart_sel in smdk4412 kernel too
128 16 Denis 'GNUtoo' Carikli
129
h2. Modem partitions
130
131 30 Denis 'GNUtoo' Carikli
h3. GT-I9300, GT-N7100
132 3 Denis 'GNUtoo' Carikli
133 19 Denis 'GNUtoo' Carikli
|_. Location |_. Name |_. Content |
134 71 Denis 'GNUtoo' Carikli
| [ 0x0 -> 0xfff ] | ? | Partition table ? |
135
| [ 0x1000 -> 0xefff ] | PSIRAM | First stage bootloader ? |
136 31 Denis 'GNUtoo' Carikli
| [ 0xF000 -> 0x27fff ] | EBL | Second stage bootloader ? |
137 29 Denis 'GNUtoo' Carikli
| [ 0x28000 -> 0x9ff7ff ] | MAIN | ? |
138 28 Denis 'GNUtoo' Carikli
| [ 0x9ff800 -> 0x9fffff ] | SECPACK | ? |
139 70 Denis 'GNUtoo' Carikli
| [ 0xa00000 -> 0xbfffff ] | NV | nvdata default values?
140
TODO: find the place in libsamsung-ipc source mentioning that |
141 1 Denis 'GNUtoo' Carikli
142 31 Denis 'GNUtoo' Carikli
References for the table:
143
* https://git.replicant.us/replicant/external_libsamsung-ipc/tree/samsung-ipc/devices/i9300/i9300.h?id=9ff9785a7f48e32f107ca7fb2e298b1320ad4cbc
144
* https://git.replicant.us/replicant/external_libsamsung-ipc/tree/samsung-ipc/devices/n7100/n7100.h?id=9ff9785a7f48e32f107ca7fb2e298b1320ad4cbc
145
* Verified on GT-I9300 and GT-N7100 modem partition table
146 23 Denis 'GNUtoo' Carikli
147 32 Denis 'GNUtoo' Carikli
h4. GT-I9300 and GT-N7100 modem partition table dump
148 23 Denis 'GNUtoo' Carikli
149 68 Denis 'GNUtoo' Carikli
TODO:
150
* Send patch for the "modem-partition-tool#n33":https://git.replicant.us/contrib/GNUtoo/hardware_replicant_libsamsung-ipc/tree/tools/modem-image-tool.c?h=patches-todo/modem-partition-tool#n33
151
* Make sure that we know the device from the command line
152
* Understand the field depths along the way when supporting more devices
153
* Document all other devices that don't have this partition table
154
* Find the name of this partition table
155
156 23 Denis 'GNUtoo' Carikli
<pre>
157 24 Denis 'GNUtoo' Carikli
$ hexdump -C RADIO.img
158
00000000  50 53 49 52 41 4d 00 00  00 00 00 00 00 10 00 00  |PSIRAM..........|
159
00000010  00 00 00 00 00 e0 00 00  00 00 00 00 00 00 00 00  |................|
160
00000020  45 42 4c 00 00 00 00 00  00 00 00 00 00 f0 00 00  |EBL.............|
161
00000030  00 00 00 60 00 90 01 00  00 00 00 00 00 00 00 00  |...`............|
162
00000040  4d 41 49 4e 00 00 00 00  00 00 00 00 00 80 02 00  |MAIN............|
163
00000050  00 00 30 60 00 78 9d 00  00 00 00 00 00 00 00 00  |..0`.x..........|
164
00000060  53 45 43 50 41 43 4b 00  00 00 00 00 00 f8 9f 00  |SECPACK.........|
165
00000070  00 00 00 00 00 08 00 00  00 00 00 00 00 00 00 00  |................|
166
00000080  4e 56 00 00 00 00 00 00  00 00 00 00 00 00 a0 00  |NV..............|
167
00000090  00 00 e8 60 00 00 20 00  00 00 00 00 00 00 00 00  |...`.. .........|
168
000000a0  00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00  |................|
169
*
170
[...]
171 1 Denis 'GNUtoo' Carikli
</pre>
172 32 Denis 'GNUtoo' Carikli
173
h3. Devices without a partition table or with a different one
174
175 69 Denis 'GNUtoo' Carikli
* GT-I9100, GT-I9250, GT-N7000, GT-P3100
176
* Probably GT-P5100 as well, as it's similar to GT-P3100 
177
* All the devices with Qualcomm modems (GT-I9305, GT-N7105)
178
179
Unknown:
180
* Galaxy Note 8.0
181 17 Denis 'GNUtoo' Carikli
182 1 Denis 'GNUtoo' Carikli
h2. Links
183
184 45 Denis 'GNUtoo' Carikli
* "modem_modemctl_device_xmm6262.c":https://git.replicant.us/replicant/kernel_samsung_smdk4412/tree/drivers/misc/modem_if/modem_modemctl_device_xmm6262.c
185 1 Denis 'GNUtoo' Carikli
* https://forum.xda-developers.com/galaxy-s2/help/how-to-talk-to-modem-commands-t1471241/page4
186 45 Denis 'GNUtoo' Carikli
* http://www.arteris.com/blog/bid/59433/Interchip-Connectivity-HSIC-UniPro-HSI-C2C-LLI-oh-my
187 64 Denis 'GNUtoo' Carikli
** TODO: move this link somewhere where it's more useful